First published: Sun Aug 16 2015(Updated: )
The DiskImages component in Apple iOS before 8.4.1 and OS X before 10.10.5 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via a malformed DMG image.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <=8.4 | |
macOS Yosemite | <=10.10.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-3800 has a high severity rating due to its potential to allow privilege escalation and application crashes.
To fix CVE-2015-3800, update your Apple iOS to version 8.4.1 or later and macOS to version 10.10.5 or later.
CVE-2015-3800 can be exploited through the use of malformed DMG images, leading to memory corruption.
Users of Apple iOS versions prior to 8.4.1 and macOS versions prior to 10.10.5 are affected by CVE-2015-3800.
While CVE-2015-3800 primarily causes application crashes, it may indirectly lead to data loss in unsaved states.